CVE-2015-8086
Severity CVSS v4.0:
Pending analysis
Type:
CWE-326
Inadequate Encryption Strength
Publication date:
03/10/2016
Last modified:
12/04/2025
Description
Huawei AR routers with software before V200R007C00SPC100; Quidway S9300 routers with software before V200R009C00; S12700 routers with software before V200R008C00SPC500; S9300, Quidway S5300, and S5300 routers with software before V200R007C00; and S5700 routers with software before V200R007C00SPC500 makes it easier for remote authenticated administrators to obtain encryption keys and ciphertext passwords via vectors related to key storage.
Impact
Base Score 3.x
4.90
Severity 3.x
MEDIUM
Base Score 2.0
4.00
Severity 2.0
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:huawei:quidway_s5300_firmware:v200r001c00spc300:*:*:*:*:*:*:* | ||
| cpe:2.3:h:huawei:quidway_s5300:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:huawei:quidway_s9300_firmware:v200r001c00spc300:*:*:*:*:*:*:* | ||
| cpe:2.3:o:huawei:quidway_s9300_firmware:v200r002c00spc100:*:*:*:*:*:*:* | ||
| cpe:2.3:o:huawei:quidway_s9300_firmware:v200r003c00spc500:*:*:*:*:*:*:* | ||
| cpe:2.3:h:huawei:quidway_s9300:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:huawei:s5700_firmware:v200r001c00:*:*:*:*:*:*:* | ||
| cpe:2.3:o:huawei:s5700_firmware:v200r002c00:*:*:*:*:*:*:* | ||
| cpe:2.3:o:huawei:s5700_firmware:v200r003c00:*:*:*:*:*:*:* | ||
| cpe:2.3:o:huawei:s5700_firmware:v200r005c00:*:*:*:*:*:*:* | ||
| cpe:2.3:o:huawei:s5700_firmware:v200r006c00:*:*:*:*:*:*:* | ||
| cpe:2.3:h:huawei:s5700:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:huawei:s12700_firmware:v200r005c00:*:*:*:*:*:*:* | ||
| cpe:2.3:o:huawei:s12700_firmware:v200r006c00:*:*:*:*:*:*:* | ||
| cpe:2.3:h:huawei:s12700:-:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



